CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2020-27511

    Last Modified: 21 Nov 2024

    An issue was discovered in the stripTags and unescapeHTML components in Prototype 1.7.3 where an attacker can cause a Regular Expression Denial of Service (ReDOS) through stripping crafted HTML tags.

    Published: 21 Jun 2021
    5.4
    Medium

    CVE-2021-24383

    Last Modified: 21 Nov 2024

    The WP Google Maps WordPress plugin before 8.1.12 did not sanitise, validate of escape the Map Name when output in the Map List of the admin dashboard, leading to an authenticated Stored Cross-Site Scripting issue

    Published: 21 Jun 2021
    5.3
    Medium

    CVE-2021-24379

    Last Modified: 21 Nov 2024

    The Comments Like Dislike WordPress plugin before 1.1.4 allows users to like/dislike posted comments, however does not prevent them from replaying the AJAX request to add a like. This allows any user (even unauthenticated) to add unlimited like/dislike to any comment. The plugin appears to have some Restriction modes, such as Cookie Restriction, IP Restrictions, Logged In User Restriction, however, they do not prevent such attack as they only check client side

    Published: 21 Jun 2021
    4.8
    Medium

    CVE-2021-24378

    Last Modified: 21 Nov 2024

    The Autoptimize WordPress plugin before 2.7.8 does not check for malicious files such as .html in the archive uploaded via the 'Import Settings' feature. As a result, it is possible for a high privilege user to upload a malicious file containing JavaScript code inside an archive which will execute when a victim visits index.html inside the plugin directory.

    Published: 21 Jun 2021
    8.1
    High

    CVE-2021-24377

    Last Modified: 21 Nov 2024

    The Autoptimize WordPress plugin before 2.7.8 attempts to remove potential malicious files from the extracted archive uploaded via the 'Import Settings' feature, however this is not sufficient to protect against RCE as a race condition can be achieved in between the moment the file is extracted on the disk but not yet removed. It is a bypass of CVE-2020-24948.

    Published: 21 Jun 2021
    9.8
    Critical

    CVE-2021-24376

    Last Modified: 21 Nov 2024

    The Autoptimize WordPress plugin before 2.7.8 attempts to delete malicious files (such as .php) form the uploaded archive via the "Import Settings" feature, after its extraction. However, the extracted folders are not checked and it is possible to upload a zip which contained a directory with PHP file in it and then it is not removed from the disk. It is a bypass of CVE-2020-24948 which allows sending a PHP file via the "Import Settings" functionality to achieve Remote Code Execution.

    Published: 21 Jun 2021
    5.3
    Medium

    CVE-2021-24374

    Last Modified: 21 Nov 2024

    The Jetpack Carousel module of the JetPack WordPress plugin before 9.8 allows users to create a "carousel" type image gallery and allows users to comment on the images. A security vulnerability was found within the Jetpack Carousel module by nguyenhg_vcs that allowed the comments of non-published page/posts to be leaked.

    Published: 21 Jun 2021
    6.1
    Medium

    CVE-2021-24373

    Last Modified: 21 Nov 2024

    The WP Hardening – Fix Your WordPress Security WordPress plugin before 1.2.2 did not sanitise or escape the historyvalue GET parameter before outputting it in a Javascript block, leading to a reflected Cross-Site Scripting issue.

    Published: 21 Jun 2021
    6.1
    Medium

    CVE-2021-24372

    Last Modified: 21 Nov 2024

    The WP Hardening – Fix Your WordPress Security WordPress plugin before 1.2.2 did not sanitise or escape the $_SERVER['REQUEST_URI'] before outputting it in an attribute, leading to a reflected Cross-Site Scripting issue.

    Published: 21 Jun 2021
    5.4
    Medium

    CVE-2021-24369

    Last Modified: 21 Nov 2024

    In the GetPaid WordPress plugin before 2.3.4, users with the contributor role and above can create a new Payment Form, however the Label and Help Text input fields were not getting sanitized properly. So it was possible to inject malicious content such as img tags, leading to a Stored Cross-Site Scripting issue which is triggered when the form will be edited, for example when an admin reviews it and could lead to privilege escalation.

    Published: 21 Jun 2021
    5.4
    Medium

    CVE-2021-24367

    Last Modified: 21 Nov 2024

    The WP Config File Editor WordPress plugin through 1.7.1 was affected by an Authenticated Stored Cross-Site Scripting (XSS) vulnerability.

    Published: 21 Jun 2021
    5.4
    Medium

    CVE-2021-24366

    Last Modified: 5 May 2025

    The Admin Columns WordPress plugin before 4.3 and Admin Columns Pro WordPress plugin before 5.5.1 do not sanitise and escape its Label settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 21 Jun 2021
    6.1
    Medium

    CVE-2021-24364

    Last Modified: 21 Nov 2024

    The Jannah WordPress theme before 5.4.4 did not properly sanitize the options JSON parameter in its tie_get_user_weather AJAX action before outputting it back in the page, leading to a Reflected Cross-Site Scripting (XSS) vulnerability.

    Published: 21 Jun 2021
    9.8
    Critical

    CVE-2021-24361

    Last Modified: 21 Nov 2024

    In the Location Manager WordPress plugin before 2.1.0.10, the AJAX action gd_popular_location_list did not properly sanitise or validate some of its POST parameters, which are then used in a SQL statement, leading to unauthenticated SQL Injection issues.

    Published: 21 Jun 2021
    5.4
    Medium

    CVE-2021-24339

    Last Modified: 21 Nov 2024

    The Pods – Custom Content Types and Fields WordPress plugin before 2.7.27 was vulnerable to an Authenticated Stored Cross-Site Scripting (XSS) security vulnerability within the 'Menu Label' field parameter.

    Published: 21 Jun 2021
    5.4
    Medium

    CVE-2021-24338

    Last Modified: 21 Nov 2024

    The Pods – Custom Content Types and Fields WordPress plugin before 2.7.27 was vulnerable to an Authenticated Stored Cross-Site Scripting (XSS) security vulnerability within the 'Singular Label' field parameter.

    Published: 21 Jun 2021
    9.8
    Critical

    CVE-2021-35066

    Last Modified: 21 Nov 2024

    An XXE vulnerability exists in ConnectWise Automate before 2021.0.6.132.

    Published: 21 Jun 2021
    8.1
    High

    CVE-2021-21422

    Last Modified: 21 Nov 2024

    mongo-express is a web-based MongoDB admin interface, written with Node.js and express. 1: As mentioned in this issue: https://github.com/mongo-express/mongo-express/issues/577, when the content of a cell grows larger than supported size, clicking on a row will show full document unescaped, however this needs admin interaction on cell. 2: Data cells identified as media will be rendered as media, without being sanitized. Example of different renders: image, audio, video, etc. As an example of type 1 attack, an unauthorized user who only can send a large amount of data in a field of a document may use a payload with embedded javascript. This could send an export of a collection to the attacker without even an admin knowing. Other types of attacks such as dropping a database\collection are possible.

    Published: 21 Jun 2021
    6.5
    Medium

    CVE-2021-32697

    Last Modified: 21 Nov 2024

    neos/forms is an open source framework to build web forms. By crafting a special `GET` request containing a valid form state, a form can be submitted without invoking any validators. Form state is secured with an HMAC that is still verified. That means that this issue can only be exploited if Form Finishers cause side effects even if no form values have been sent. Form Finishers can be adjusted in a way that they only execute an action if the submitted form contains some expected data. Alternatively a custom Finisher can be added as first finisher. This regression was introduced with https://github.com/neos/form/commit/049d415295be8d4a0478ccba97dba1bb81649567

    Published: 21 Jun 2021
    6.1
    Medium

    CVE-2020-19511

    Last Modified: 21 Nov 2024

    Cross Site Scriptiong vulnerability in Typesetter 5.1 via the !1) className and !2) Description fields in index.php/Admin/Classes,

    Published: 21 Jun 2021
    9.8
    Critical

    CVE-2020-19510

    Last Modified: 21 Nov 2024

    Textpattern 4.7.3 contains an aribtrary file load via the file_insert function in include/txp_file.php.

    Published: 21 Jun 2021
    9.8
    Critical

    CVE-2021-26461

    Last Modified: 21 Nov 2024

    Apache Nuttx Versions prior to 10.1.0 are vulnerable to integer wrap-around in functions malloc, realloc and memalign. This improper memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or a remote code injection/execution.

    Published: 21 Jun 2021
    7
    High

    CVE-2021-0532

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185196177

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0530

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185196175

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0531

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185195272

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0529

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185195268

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0528

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185195266

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0526

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185195264

    Published: 21 Jun 2021
    7
    High

    CVE-2021-0533

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185193932

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0525

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible out of bounds write due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185193929

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0527

    Last Modified: 21 Nov 2024

    In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-185193931

    Published: 21 Jun 2021
    7.3
    High

    CVE-2021-0506

    Last Modified: 21 Nov 2024

    In ActivityPicker.java, there is a possible bypass of user interaction in intent resolution due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.1 Android-9Android ID: A-181962311

    Published: 21 Jun 2021
    8.8
    High

    CVE-2021-0507

    Last Modified: 21 Nov 2024

    In handle_rc_metamsg_cmd of btif_rc.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-181860042

    Published: 21 Jun 2021
    9.8
    Critical

    CVE-2021-0516

    Last Modified: 21 Nov 2024

    In p2p_process_prov_disc_req of p2p_pd.c, there is a possible out of bounds read and write due to a use after free. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-181660448

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0505

    Last Modified: 21 Nov 2024

    In the Settings app, there is a possible way to disable an always-on VPN due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-179975048

    Published: 21 Jun 2021
    6.5
    Medium

    CVE-2021-0504

    Last Modified: 21 Nov 2024

    In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-179162665

    Published: 21 Jun 2021
    7.5
    High

    CVE-2021-0517

    Last Modified: 21 Nov 2024

    In updateCapabilities of ConnectivityService.java, there is a possible incorrect network state determination due to a logic error in the code. This could lead to biasing of networking tasks to occur on non-VPN networks, which could lead to remote information disclosure, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-179053823

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0511

    Last Modified: 21 Nov 2024

    In Dex2oat of dex2oat.cc, there is a possible way to inject bytecode into an app due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11Android ID: A-178055795

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0510

    Last Modified: 21 Nov 2024

    In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-176444622

    Published: 21 Jun 2021
    7
    High

    CVE-2021-0508

    Last Modified: 21 Nov 2024

    In various functions of DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-176444154

    Published: 21 Jun 2021
    7
    High

    CVE-2021-0509

    Last Modified: 21 Nov 2024

    In various functions of CryptoPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-176444161

    Published: 21 Jun 2021
    7
    High

    CVE-2021-0520

    Last Modified: 21 Nov 2024

    In several functions of MemoryFileSystem.cpp and related files, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-10Android ID: A-176237595

    Published: 21 Jun 2021
    5.5
    Medium

    CVE-2021-0521

    Last Modified: 21 Nov 2024

    In getAllPackages of PackageManagerService, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure of cross-user permissions with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-174661955

    Published: 21 Jun 2021
    7.5
    High

    CVE-2021-0522

    Last Modified: 21 Nov 2024

    In ConnectionHandler::SdpCb of connection_handler.cc, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-9 Android-10Android ID: A-174182139

    Published: 21 Jun 2021
    7.3
    High

    CVE-2021-0523

    Last Modified: 21 Nov 2024

    In onCreate of WifiScanModeActivity.java, there is a possible way to enable Wi-Fi scanning without user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11Android ID: A-174047492

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0478

    Last Modified: 21 Nov 2024

    In updateDrawable of StatusBarIconView.java, there is a possible permission bypass due to an uncaught exception. This could lead to local escalation of privilege by running foreground services without notifying the user, with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.1 Android-9Android ID: A-169255797

    Published: 21 Jun 2021
    7.8
    High

    CVE-2021-0513

    Last Modified: 21 Nov 2024

    In deleteNotificationChannel and related functions of NotificationManagerService.java, there is a possible permission bypass due to improper state validation. This could lead to local escalation of privilege via hidden services with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-156090809

    Published: 21 Jun 2021
    —
    Unknown

    CVE-2021-20249

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 21 Jun 2021
    6.1
    Medium

    CVE-2020-21130

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in HisiPHP 2.0.8 via the group name in addgroup.html.

    Published: 21 Jun 2021
    6.1
    Medium

    CVE-2020-21517

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in MetInfo 7.0.0 via the gourl parameter in login.php.

    Published: 21 Jun 2021